ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Compliance Toolkit

Spyware and the law

Simon Briskman and Mark Smith Olswang

Published: 04 Nov 2004 17:08 GMT

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

The second category of spyware we'll call "adware". This doesn’t have a malicious intent, but rather is designed to enhance the effectiveness of advertising targeted at the user or otherwise provide marketing information to a third party. Examples of this are applications that facilitate pop-up browser windows, redirect browser home pages and add favourite sites to browser lists.

Already, the definitions can be attacked. First, it is possible to find legitimate uses for mal-spyware. For example, covertly monitoring children’s Internet activity, remote administration of networked PCs are legitimate uses for software that could be used to serious criminal effect.

Second, in looking at adware, badly written software in this category could lead to security vulnerabilities and lead indirectly to a security compromise. The dividing line becomes blurred, particularly when some of the code in question may not even be an application.

Finally, there is a third category of software on the very edges of spyware. Specific functionality within legitimate applications may send data off remotely to third parties without users realising they have enabled this feature. One example of this was a feature of RealJukeBox software that sent music track details back to RealNetworks. Many applications (antivirus software being a good example) do contact remote hosts, but make it very clear to users what they are doing. This issue is outside the scope of this article, but there are other well-known examples suggesting this topic should not be ignored.

Outside the law?
Before looking at legislation to regulate spyware, it is worth considering the litigation on the fringes of this issue. First, lawsuits have been brought in the US by software developers who claim their products have been wrongly labelled as spyware. In the ecommerce arena, many on-line merchants are also threatening action because spyware can distort their ability to track where site visitors came from (which may have an impact on payment of commission to affiliates) and can be used to serve up competitive adverts and divert visitors from their sites.

The growing awareness of the scale of the problem, supported as usual by a tide of industry surveys, has led to calls for legislation to help users tackle the problem. As with many Internet issues, some of the best practical solutions are technical. However, because the problem affects many home users, who struggle to get to grips with basic antivirus precautions, let alone spyware, the law does have a role to play. At the time of writing, it is the US legislators that are making the headlines.

US legislation
There are currently three spyware pieces of legislation being developed at federal level in the US.

These are the Internet Spyware Prevention Act of 2004 (the "I-SPY Act"), the Securely Protect Yourself Against Cyber Trespass Act (the "SPY Act") and the snappily titled Software Principles Yielding Better Levels of Computer Knowledge Act (or "SPY BLOCK Act"). The purpose of these bills includes targeting the unauthorised installation of computer software (with a corresponding focus on disclosure of information to users) and protecting users from unknowing transmission of personal information over the Internet. It is likely there will be some consolidation of these bills.

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with Dell

Did you find this article useful?
345 out of 667 people found this useful



Related Jobs

Records Management Project Manager wanted asap!

A good awareness of information management principles and a familiarity with information systems and archives ** Ability to ensure that continuous ...

BA/Business analyst/Systems Analyst -Global Finance House 30- 45K+

As a Business Analyst you will ensure that business/project objectives are understood, that requirements are clarified, and ITS implications are ...

Contract Specialist - Newcastle-00051050

Will be required to work in a client facing environment, with senior management levels Responsible for educating the project team on contract terms ...

Loading Video Player ....

Featured Talkback

There will be further activation issues to watch out for as Microsoft plans to offer a similar service to independent software vendors whereby they can "control" licensing through activation and other measures similar to the Software Protection Platform.

By: DefenceIT

Read full story:
Microsoft outage down to 'human error'

Sentry Posts Blog

Mobile Security Expert: Your Camera Ph...

Mobile Security Expert: Your Camera Phone Got Hacked Author: Eric Everson, Founder MyMobiSafe.com Have you ever heard someone say “I’d like to be a fly on the wall in that room.”?... More

Post a comment

Skype - The Roach Motel

Here is an interesting article from The National Business Review, pointing out once again that you can never delete a Skype account. Never. Period. This is something I am familiar... More

Post a comment

The vPhone: Why Visa Should Go Mobile

The vPhone: Why Visa Should Go Mobile Author: Eric Everson, Founder MyMobiSafe.com With all of the success of Apple’s iPhone, there is a growing case to support a company like Visa... More

Post a comment